Sovereign infrastructure.
Built and run in Canada.
Most MSPs resell public cloud. We run our own — two Canadian data centres, Tier-1+2 storage, redundant 10 Gbps fibre, and SOC II certified infrastructure. Your Zero Trust control plane, compliance stack, business continuity, and AI workloads live here. Not on AWS. Not on Azure. In Canada, under our control.
What runs on the TruPoint Private Cloud.
Six workload categories — purpose-built for SMBs that won't settle for hyperscaler defaults.
Zero Trust Control Plane
Cloudflare One and Microsoft Entra — hosted and operated on our Canadian private cloud. The network security perimeter and identity plane that power TruWorkspace Zero Trust run on infrastructure we own and control, not on a hyperscaler you don't.
Compliance & SIEM
Our proprietary ISMS platform, SIEM, and SOC monitoring — hosted in Canada. Every compliance control for TruCompliance clients lives here, with evidence collected and stored in Canadian jurisdiction.
AI Workloads
Private cloud hosting for AI deployments, Azure AI integrations, and on-edge AI projects — with Canadian data sovereignty and the security controls your compliance framework requires.
Business Continuity
Veeam-powered immutable backup network — isolated from production, encrypted at rest, geo-redundant across both Canadian data centres. Microsoft 365 backup, VM-level replication, and annual DR testing included.
Workflow Automation
Hosted n8n instances for business process automation — private, compliant, Canadian. Connect Microsoft 365, line-of-business apps, and security tooling without sending data to a public SaaS.
DaaS & Hosted Apps
Citrix and Inuvika cloud desktops and hosted applications — for organizations that run workloads requiring a managed desktop environment. Delivered through the same Zero Trust controls as every other workload on the platform.
How the platform is built.
A layered architecture that separates compute, storage, security, and network — engineered for the controls SMB compliance frameworks demand.
Your data stays in Canada. No exceptions.
We own the infrastructure — which means our data sovereignty guarantee isn't a contractual policy layered on top of a public cloud. It's structural. Every byte — primary, replica, and backup — lives in one of our two Canadian data centres. No cross-border replication, no hyperscaler defaults that route traffic through US regions, no offshore tier-1 support touching your environment.
- Primary + replica in Canada only
- Backup network isolated, encrypted at rest
- SOC analysts located in Canada
- Hardware procured and racked in Canada
- PIPEDA-aligned data handling by default
Every workload, behind Zero Trust.
The platform itself is governed by the same Zero Trust controls we deploy for clients. SSO via Microsoft 365, MFA everywhere, segmented networks, and least-privilege admin by default.
Microsoft 365 SSO
The same Entra identity plane that powers TruWorkspace Zero Trust governs every platform interface — admin, customer portal, and monitoring.
DUO + Windows Hello
Phishing-resistant MFA on every privileged account. No passwords on console paths.
Network segmentation
Customer environments isolated by VRF and ACL, with Cloudflare One's Zero Trust layer ensuring no environment can reach another — the same edge model deployed for TruWorkspace clients. Backup network air-gapped from production.
Tour the platform.
A 30-minute walkthrough of the two-DC architecture, the workloads it runs, and how your environment would land on it.